[Secure-testing-commits] r37058 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Oct 9 06:27:06 UTC 2015


Author: carnil
Date: 2015-10-09 06:27:06 +0000 (Fri, 09 Oct 2015)
New Revision: 37058

Modified:
   data/CVE/list
Log:
Update CVE-2015-5284/freeipa

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-10-09 06:06:29 UTC (rev 37057)
+++ data/CVE/list	2015-10-09 06:27:06 UTC (rev 37058)
@@ -5903,9 +5903,9 @@
 	- kallithea <itp> (bug #689573)
 CVE-2015-5284 [ipa-kra-install includes certificate and private key in world readable file]
 	RESERVED
-	- freeipa <unfixed>
+	- freeipa <not-affected> (Introduced in 4.2)
+	NOTE: https://fedorahosted.org/freeipa/ticket/5347
 	NOTE: Upstream commit: https://git.fedorahosted.org/cgit/freeipa.git/commit/?id=55a66ccba3e2181a50e7733b7476991975b7455f
-	TODO: check
 CVE-2015-5283 [Creating multiple sockets when SCTP module isn't loaded leads to kernel panic]
 	RESERVED
 	- linux 4.2.1-2




More information about the Secure-testing-commits mailing list